Security Advisory
CVE-2026-82125
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
The Schema & Structured Data for WP & AMP WordPress plugin before 1.66 does not correctly verify the ownership or the moderation status of a comment before returning its content, allowing unauthenticated users to read the content of comments still awaiting moderation or marked as spam.